What are the responsibilities and job description for the Network, Data Protection, and Endpoint Security Engineer-Hybrid @NYC -Need Locals Only position at Cyber Sphere LLC?
Job Details
Title - Network, Data Protection, and Endpoint Security Engineer
Location-Hybrid @NYC -Need Locals
Duration Contract
Skills Needed:
1) Excellent Communication - must be able to speak to technical concepts/answer technical questions posed by the client, also will be doing documentation so we need great written comms as well
2) Documentation & Networking
- IDS/IPS
- Firewall
- Segmentation
- Web filtering
- CISCO network access
- hardening/end point security
- Antivirus, antimalware
Reminder: Please submit the following in the notes section when you submit the resume
- Linkedin Link:
- Github Link:
- Rate:
- Location of the Candidate:
- Prepared for onsite interview (Y/N):
- Open to Relocate:
- Start Date Availability
- Legally Authorized to work In USA :
- Require Sponsorship:
- Visa Status:
Overview
We are seeking a highly skilled Network, Data Protection, and Endpoint Security Engineer with strong communication abilities and hands-on experience in securing enterprise network environments. The ideal candidate will be able to clearly articulate technical concepts to clients, produce high-quality documentation, and implement robust security controls across networks, firewalls, IDS/IPS, and endpoint systems.
Key Responsibilities
Communication & Documentation
- Communicate technical concepts clearly to both technical and non-technical client stakeholders.
- Respond effectively to technical questions from clients during meetings, workshops, and reviews.
- Develop high-quality documentation, including network diagrams, security architecture documents, runbooks, configuration guides, and incident reports.
Networking & Security Operations
- Manage, configure, and troubleshoot enterprise IDS/IPS platforms.
- Implement and maintain firewall policies, security rulesets, NAT, VPNs, and threat-prevention measures.
- Design and enforce network segmentation strategies to minimize attack surface and reduce lateral movement.
- Configure and maintain web filtering technologies to enforce acceptable use policies and block malicious content.
- Support and administer Cisco network access technologies, including NAC solutions, access control, authentication, and secure network onboarding.
Endpoint Security & Hardening
- Implement and maintain endpoint hardening standards across Windows, Linux, and/or macOS environments.
- Deploy, configure, and monitor antivirus and antimalware solutions to ensure effective threat prevention.
- Conduct vulnerability remediation, system patching, and secure configuration baselining.
- Participate in incident response activities related to endpoint or network-based cyber threats.
Additional Responsibilities
- Collaborate with cross-functional teams (network, security, infrastructure, SOC, etc.).
- Assist in performing security assessments and recommending improvements.
- Maintain compliance with industry security frameworks and best practices (NIST, CIS, ISO-based controls).
- Support auditing, monitoring, and reporting of network and endpoint security posture.
Required Skills & Qualifications
- Strong verbal and written communication skills; ability to interface directly with clients.
- Hands-on experience with IDS/IPS technologies (Snort, Suricata, Cisco, Palo Alto, etc.).
- Strong knowledge of firewalls (Cisco, Palo Alto, Fortinet, Check Point, etc.).
- Experience designing and managing network segmentation strategies (VLANs, ACLs, micro segmentation).
- Proficiency with web filtering technologies.
- Experience with Cisco networking concepts and tools (Cisco IOS/NX-OS, network access control, authentication, routing/switching basics).
- Strong understanding of endpoint hardening, antivirantimalware technologies, and EDR tools.
- Solid grasp of network protocols, security architecture, and threat detection.
Preferred Qualifications
- Industry certifications such as CCNA/CCNP Security, Security , CySA , CCSP, CISSP, or similar.
- Experience with SIEM/SOAR tools and security monitoring.
- Familiarity with cloud network security (AWS, Azure, Google Cloud Platform).
Regards,
Sai Srikar
Email: